Privacy Policy
Last updated July 24, 2026.
DigiGhost exists to reduce the amount of you that is sitting on the internet. Collecting more of it than the job requires would defeat the point.
Data we collect
- Account data. Your email address and display name, supplied by Google when you sign in.
- Export contents. The archive you upload and the individual traces parsed out of it — posts, comments, captions, timestamps, and similar records you already own.
- Live scan results. For Instagram, the accessible comments read during a bounded scan, including their observed timestamps and scan coverage details. A live scan may not reach every comment.
- Classification results. The flags, categories, severities, and reasons produced when your traces are analysed, plus the review decisions you make.
- Authenticated session data. You sign in directly on Instagram in a browser DigiGhost runs for you. We use the browser session to read comments Instagram makes available and carry out only deletions you approve; scanning itself deletes nothing and may not reach every comment. We do not intentionally save your typed password as a separate field, but the browser runs on our infrastructure, so we do not promise that the sign-in flow cannot be observed. The captured session is encrypted at rest with a key unique to the job, decrypted only in memory while work runs, and destroyed when the job finishes or the automatic seven-day purge runs.
- Cookies.
gg_guestto keep a guest session's jobs attached to your browser,gg_refto remember a referral link you arrived through, and an authentication session cookie once you sign in. No advertising or cross-site tracking cookies are set.
Why we use it
- To parse your export or scan accessible Instagram comments and show you what was found.
- To classify traces so you can decide what to keep and what to erase.
- To carry out deletion actions you have explicitly approved.
- To operate accounts, attribute referrals, and keep the service secure and functioning.
Subprocessors
- Vercel — application hosting and request serving.
- Neon — the Postgres database that stores job and account records.
- Vercel Blob — temporary storage for uploaded export files.
- Anthropic — AI classification of trace content to produce flags.
Retention: erased within seven days
Jobs, uploads, parsed traces, derived classification data, and stored login sessions are automatically erased seven days after the job is created. The browser closes when active scan or deletion work finishes, but the stored login session remains until then. You can delete a job and everything attached to it sooner, from the job page — that stops any deletion in progress, revokes the browser session immediately, and then erases the browser profile or remote browser context, local session files, the uploaded export, and the parsed traces and classifications. We keep a non-identifying record that the purge ran, and nothing else. Account records (email and referral attribution) persist until you ask us to delete your account.
We do not sell your data
DigiGhost does not sell or share personal information for money or for cross-context behavioural advertising, and never has.
Your rights (GDPR)
If you are in the EEA or UK, you have the right to access the personal data we hold about you, to have it corrected or erased, to restrict or object to processing, and to receive a portable copy. Our legal bases are performance of a contract (running the service you asked for) and consent (processing the export you chose to upload). You may withdraw consent at any time by deleting your job data, and you may complain to your local supervisory authority.
Your rights (CCPA/CPRA)
If you are a California resident, you have the right to know what personal information we collect and how it is used, and the right to request its deletion. We do not sell personal information, and we will not discriminate against you for exercising any of these rights.
Contact
For any privacy request, including access, deletion, or portability: privacy@goghost.app.